Vulnerabilities > Foxy Shop

DATE CVE VULNERABILITY TITLE RISK
2022-07-11 CVE-2022-1220 Cross-site Scripting vulnerability in Foxy-Shop Foxyshop
The FoxyShop WordPress plugin before 4.8.2 does not sanitise and escape a parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting
network
foxy-shop CWE-79
4.3